IOC Radar
DomainMediumSignal 59/100

groupsinsights.org

Location
United StatesUnited States
First Seen
Jun 1, 2026
Last Seen
Jun 1, 2026
Jun 1
First Seen
14d ago
Jun 1
Last Seen
14d ago
2
Reports
source reports
59%
Confidence
medium
10/91
VirusTotal
detections
Found in 2 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
59%
Signal Score
59 / 100
IDS Rule
No
Threat Context
Tags

Feed Intelligence Summary

2 reports59% confidence
2
Source reports
59%
Confidence score
Category tags
indicatornetworknorth americaresearchedunited states

Activity Timeline

1 total obs
Jun 1Jun 1

Threat Activity Heatmap

· Peak: 2026-06-01
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Intelligence SummaryAI Generated

This Indicator of Compromise (IOC), `groupsinsights.org`, has been identified with a significant risk score of 59.38, indicating a moderate to high probability of its involvement in malicious activities. The presence of such an IOC within an organization's network could signal active compromise, ranging from initial access to command and control communications or data exfiltration attempts. Left unaddressed, this could lead to severe consequences, including data breaches, system unavailability, …

Threat ScoreMedium Risk
59
SIGNAL
Signal Score
59%
Confidence
2
Reports
First seenJun 1, 2026
Last seenJun 1, 2026

VirusTotal

10/ 91vendors flagged
11% detection rateJun 3, 2026

WHOIS

domain rank
-1
raw
Create date: 2026-02-23 00:00:00 Domain name: groupsinsights.org Domain registrar id: 460.0 Domain registrar url: http://www.webnic.cc Expiry date: 2027-02-23 00:00:00 Name server 1: bruce.ns.cloudflare.com Name server 2: aitana.ns.cloudflare.com Query time: 2026-02-24 15:56:05 Update date: 2026-02-23 00:00:00
subdomains count
0

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 14 days ago · Last seen 14 days ago
Appeared in 2 threat reports